CVE-1999-0723

CVSS 2.0 Score 7.1 of 10 (high)

Details

Published Jun 23, 1999
Updated: Nov 20, 2024

Summary

CVE-1999-0723 is a denial-of-service vulnerability affecting the Windows NT Client Server Runtime Subsystem (CSRSS). When all worker threads in CSRSS are waiting for user input, the system becomes susceptible to a denial-of-service attack. An attacker can exploit this vulnerability by sending input requests to the subsystem, causing it to become unresponsive and preventing legitimate users from accessing the system. This issue can lead to significant downtime and impact productivity. Microsoft released a patch to address this vulnerability, and it is recommended that all affected systems be updated to mitigate the risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Microsoft Windows NT
  • Microsoft Windows 2000

Affected Vendors

  • Microsoft